Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2021:2634 - Security Advisory
Issued:
2021-07-01
Updated:
2021-07-01

RHSA-2021:2634 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: go-toolset-1.15 and go-toolset-1.15-golang security and bug fix update

Type/Severity

Security Advisory: Moderate

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for go-toolset-1.15 and go-toolset-1.15-golang is now available for Red Hat Developer Tools.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Go Toolset provides the Go programming language tools and libraries. Go is alternatively known as golang.

Security Fix(es):

  • golang: archive/zip: Malformed archive may cause panic or memory exhaustion (CVE-2021-33196)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Bug Fix(es):

  • Memory consumption (container_memory_rss) steadily growing for /system.slice/kubelet.service when FIPS enabled [devtools-2021.2-z] (BZ#1975394)

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Developer Tools (for RHEL Workstation) 1 x86_64
  • Red Hat Developer Tools (for RHEL Server) 1 x86_64
  • Red Hat Developer Tools (for RHEL Server for System Z) 1 s390x
  • Red Hat Developer Tools (for RHEL Server for IBM Power LE) 1 ppc64le

Fixes

  • BZ - 1965503 - CVE-2021-33196 golang: archive/zip: Malformed archive may cause panic or memory exhaustion

CVEs

  • CVE-2021-33196

References

  • https://access.redhat.com/security/updates/classification/#moderate
  • https://access.redhat.com/documentation/en-us/red_hat_developer_tools/1/html/using_go_1.15.7_toolset
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Developer Tools (for RHEL Workstation) 1

SRPM
go-toolset-1.15-1.15.13-1.el7_9.src.rpm SHA-256: c84631137dbc60b462ef858e4e3a2459d5debe05fba9c7b78e363d3050105b9d
go-toolset-1.15-golang-1.15.13-1.el7_9.src.rpm SHA-256: cb292fdccfbc6aa4c697846e0412448ad91e68a4cb4810f520c7931d5422e55d
x86_64
go-toolset-1.15-1.15.13-1.el7_9.x86_64.rpm SHA-256: ebfd1b92105da75beb80fb362e2d9c32e81c2b0b22314971d7486391af7351af
go-toolset-1.15-build-1.15.13-1.el7_9.x86_64.rpm SHA-256: a0541739c732069f70315b3c8ce4119549a9605385e824fa45747f6f8c71ba73
go-toolset-1.15-golang-1.15.13-1.el7_9.x86_64.rpm SHA-256: ce64b1191cc82f4c547cbebeeb00cc0f531919384d331cc4adc7e972e2eebad0
go-toolset-1.15-golang-bin-1.15.13-1.el7_9.x86_64.rpm SHA-256: 0182d2c1f788e868b4e0fccdfaa177a577e5b478b66c000c9d1395d8e115288c
go-toolset-1.15-golang-docs-1.15.13-1.el7_9.noarch.rpm SHA-256: 1a842398e345784f822518794db8f832227f42f333ecb5f6b5f580a106819a36
go-toolset-1.15-golang-misc-1.15.13-1.el7_9.x86_64.rpm SHA-256: 3c480e3aed347efdb2b87874f78744076a6606b147e7f940b5b686b11fc19711
go-toolset-1.15-golang-race-1.15.13-1.el7_9.x86_64.rpm SHA-256: 6cffa5dfd545fc1f5cf93260b9c7568713b954b46708072e19b826b149c41798
go-toolset-1.15-golang-src-1.15.13-1.el7_9.x86_64.rpm SHA-256: 297c20b5888a6242a20210c6d1110a3b2d615fb95460c766badcf70badd2d603
go-toolset-1.15-golang-tests-1.15.13-1.el7_9.x86_64.rpm SHA-256: da7de5d0b50f218c685d60eb2c77abfc55386dbe99dc136c4c87b0d9d9bf917a
go-toolset-1.15-runtime-1.15.13-1.el7_9.x86_64.rpm SHA-256: d81317a689e21f4dfc592dce39db9b166cfe688d7aa66e789156c4c60621f62a
go-toolset-1.15-scldevel-1.15.13-1.el7_9.x86_64.rpm SHA-256: 370a0354b96c08e23a846ea1079f9f95e44740b09d53cafa9f46fd748f6841b1

Red Hat Developer Tools (for RHEL Server) 1

SRPM
go-toolset-1.15-1.15.13-1.el7_9.src.rpm SHA-256: c84631137dbc60b462ef858e4e3a2459d5debe05fba9c7b78e363d3050105b9d
go-toolset-1.15-golang-1.15.13-1.el7_9.src.rpm SHA-256: cb292fdccfbc6aa4c697846e0412448ad91e68a4cb4810f520c7931d5422e55d
x86_64
go-toolset-1.15-1.15.13-1.el7_9.x86_64.rpm SHA-256: ebfd1b92105da75beb80fb362e2d9c32e81c2b0b22314971d7486391af7351af
go-toolset-1.15-build-1.15.13-1.el7_9.x86_64.rpm SHA-256: a0541739c732069f70315b3c8ce4119549a9605385e824fa45747f6f8c71ba73
go-toolset-1.15-golang-1.15.13-1.el7_9.x86_64.rpm SHA-256: ce64b1191cc82f4c547cbebeeb00cc0f531919384d331cc4adc7e972e2eebad0
go-toolset-1.15-golang-bin-1.15.13-1.el7_9.x86_64.rpm SHA-256: 0182d2c1f788e868b4e0fccdfaa177a577e5b478b66c000c9d1395d8e115288c
go-toolset-1.15-golang-docs-1.15.13-1.el7_9.noarch.rpm SHA-256: 1a842398e345784f822518794db8f832227f42f333ecb5f6b5f580a106819a36
go-toolset-1.15-golang-misc-1.15.13-1.el7_9.x86_64.rpm SHA-256: 3c480e3aed347efdb2b87874f78744076a6606b147e7f940b5b686b11fc19711
go-toolset-1.15-golang-race-1.15.13-1.el7_9.x86_64.rpm SHA-256: 6cffa5dfd545fc1f5cf93260b9c7568713b954b46708072e19b826b149c41798
go-toolset-1.15-golang-src-1.15.13-1.el7_9.x86_64.rpm SHA-256: 297c20b5888a6242a20210c6d1110a3b2d615fb95460c766badcf70badd2d603
go-toolset-1.15-golang-tests-1.15.13-1.el7_9.x86_64.rpm SHA-256: da7de5d0b50f218c685d60eb2c77abfc55386dbe99dc136c4c87b0d9d9bf917a
go-toolset-1.15-runtime-1.15.13-1.el7_9.x86_64.rpm SHA-256: d81317a689e21f4dfc592dce39db9b166cfe688d7aa66e789156c4c60621f62a
go-toolset-1.15-scldevel-1.15.13-1.el7_9.x86_64.rpm SHA-256: 370a0354b96c08e23a846ea1079f9f95e44740b09d53cafa9f46fd748f6841b1

Red Hat Developer Tools (for RHEL Server for System Z) 1

SRPM
go-toolset-1.15-1.15.13-1.el7_9.src.rpm SHA-256: c84631137dbc60b462ef858e4e3a2459d5debe05fba9c7b78e363d3050105b9d
go-toolset-1.15-golang-1.15.13-1.el7_9.src.rpm SHA-256: cb292fdccfbc6aa4c697846e0412448ad91e68a4cb4810f520c7931d5422e55d
s390x
go-toolset-1.15-1.15.13-1.el7_9.s390x.rpm SHA-256: f23a6e0f8aaa88f355bc4e52892fedf881f2009f79f9040ef990ee0251ee224b
go-toolset-1.15-build-1.15.13-1.el7_9.s390x.rpm SHA-256: 19bb8115814f9e8241360947c34ed0c1ebe4b1fceea8e3903ce22112c1978cfe
go-toolset-1.15-golang-1.15.13-1.el7_9.s390x.rpm SHA-256: 9eaf64bb4a02275cb49db8f10b2935f8a035c9b88bdbe3cae42a6b82f1e41721
go-toolset-1.15-golang-bin-1.15.13-1.el7_9.s390x.rpm SHA-256: e3bf5af0ad09079c18049c168760a37816e3063e472bb252973764dccfb41fa6
go-toolset-1.15-golang-docs-1.15.13-1.el7_9.noarch.rpm SHA-256: 1a842398e345784f822518794db8f832227f42f333ecb5f6b5f580a106819a36
go-toolset-1.15-golang-misc-1.15.13-1.el7_9.s390x.rpm SHA-256: 71b6812eebe21294b901b7444dd6a3b0a2d20470e720b9f31cedcd07a99be7ae
go-toolset-1.15-golang-src-1.15.13-1.el7_9.s390x.rpm SHA-256: 7a1b3164c7fd45f5bf1c596945d67c4de002dfd1106309732a3d67a6dc5dc8ce
go-toolset-1.15-golang-tests-1.15.13-1.el7_9.s390x.rpm SHA-256: ec9b51067bc2e39a10d5c88c75d6112231d48852cbfdb0c089f9aa1a907d85ae
go-toolset-1.15-runtime-1.15.13-1.el7_9.s390x.rpm SHA-256: 9baf31edf9e46eaa331576777ceba36c0e65977db56c12ffc9ea6115f168d6e8
go-toolset-1.15-scldevel-1.15.13-1.el7_9.s390x.rpm SHA-256: 84382f7e3be271ead8be91eb24893caac442bdc806cf8dbb252d0d55407351b0

Red Hat Developer Tools (for RHEL Server for IBM Power LE) 1

SRPM
go-toolset-1.15-1.15.13-1.el7_9.src.rpm SHA-256: c84631137dbc60b462ef858e4e3a2459d5debe05fba9c7b78e363d3050105b9d
go-toolset-1.15-golang-1.15.13-1.el7_9.src.rpm SHA-256: cb292fdccfbc6aa4c697846e0412448ad91e68a4cb4810f520c7931d5422e55d
ppc64le
go-toolset-1.15-1.15.13-1.el7_9.ppc64le.rpm SHA-256: e22567c2abaaa6e64638bdf95bb90b37b1c8bd2f50facae10efc1123a5961e93
go-toolset-1.15-build-1.15.13-1.el7_9.ppc64le.rpm SHA-256: 1228e9d696a0c2c59479909a45eb66043b9fd91c9b3cad1b011de96f8b0d9226
go-toolset-1.15-golang-1.15.13-1.el7_9.ppc64le.rpm SHA-256: dff6ac7c810689362f52e6770455dba23bd1edc02ea89752e6cfe40e2c803194
go-toolset-1.15-golang-bin-1.15.13-1.el7_9.ppc64le.rpm SHA-256: d6854ac940b5e6640a8bfc66ad8f1c8ab043baca8c53c2c0200fa833d972c327
go-toolset-1.15-golang-docs-1.15.13-1.el7_9.noarch.rpm SHA-256: 1a842398e345784f822518794db8f832227f42f333ecb5f6b5f580a106819a36
go-toolset-1.15-golang-misc-1.15.13-1.el7_9.ppc64le.rpm SHA-256: 9b7a0363487dea3d8a24b4eaf56834fb80f86957d97ce31c3707d453040565f3
go-toolset-1.15-golang-src-1.15.13-1.el7_9.ppc64le.rpm SHA-256: d63d4c7983033a8d5e5b4af3970d9a191730939103d5d24cbd2437899d55e36a
go-toolset-1.15-golang-tests-1.15.13-1.el7_9.ppc64le.rpm SHA-256: c660b4a375ad936b0e067b251c20552cf12262fb7c414f0e7debaa22ef268187
go-toolset-1.15-runtime-1.15.13-1.el7_9.ppc64le.rpm SHA-256: 6e7c6ed0e07aca9c3286488129154cff745d8881e610c200535f08cd6469362a
go-toolset-1.15-scldevel-1.15.13-1.el7_9.ppc64le.rpm SHA-256: 757c984101cb76cc1c297fc5ee6e76c70b5afd76e2d00b852b0c359275e19637

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility